Skip to Content [alt-c]


In reply to Comment by Reader Charles

Andrew Ayer on 2014-08-14 at 03:38:

Would the gmail MTA be exposed to MITM attacks when delivering an email to an smtp server?

Yes, gmail's MTA intentionally lets itself downgrade, which is vulnerable to MITM attacks. Unfortunately many legitimate email servers still don't support TLS. Fortunately, Google is leading the way in trying to get other providers to support TLS <>.


Post a Reply

Your comment will be public. To contact me privately, email me. Please keep your comment polite, on-topic, and comprehensible. Your comment may be held for moderation before being published.

(Optional; will be published)

(Optional; will not be published)

(Optional; will be published)

  • Blank lines separate paragraphs.
  • Lines starting with > are indented as block quotes.
  • Lines starting with two spaces are reproduced verbatim (good for code).
  • Text surrounded by *asterisks* is italicized.
  • Text surrounded by `back ticks` is monospaced.
  • URLs are turned into links.
  • Use the Preview button to check your formatting.